Full Disclosure mailing list archives

Re: MSN\Qwest ships DSL modem with "unconfigurable" firewall


From: "Volker Tanger" <volker.tanger () detewe de>
Date: Mon, 5 Apr 2004 15:30:14 +0200

Greetings!

On Mon, 05 Apr 2004 09:01:20 -0400 David Gianndrea
<dgianndrea () comsquared com> wrote:

Look up NAT-T @ cisco.com. That should help ya!
 
I found e.g.
http://cisco.com/en/US/products/hw/vpndevc/ps2284/products_tech_note09186a00800946af.shtml

which says basically the same - but that Cisco is supplying an
encapsulation solution, too. They're using udp/4500 and/or udp/10000 -
and you have to explicitly enable encapsulated mode (IPSec through NAT
UDP Port /  IPSec over NAT-T).

Bye

Volker Tanger
ITK Security

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: